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IN THE CLAIMS 

Please replace the claim listing with the following: 

Claim 1 (original): A method for checking the access of a user operating a first computer system 
controlled by a first security system to software and/or data on a second computer system 
controlled by a second security system comprising the following steps: 

a) transmitting a user-id from said first computer system to said second computer system 
and a challenge from said second computer system to said first computer system, 

b) transmitting said user-id and said challenge from said first computer system to said 
first security system, 

c) transmitting said user-id from said second computer system to a trusted agent and from 
said trusted agent to said second security system, 

d) transmitting a shared secret, which is registered in said first security system and in said 
second security system, from said second security system to said trusted agent and from said 
trusted agent to said second computer system, 

e) calculating in said first security system a first response using said shared secret, 

f) calculating in an access control unit of said second computer system, which access 
control unit is able to apply the rules of the first security system to calculate a response to a 
challenge, a second response to said challenge using said shared secret, 

g) transmitting said first response from said first security system to said first computer 
system, and 

h) transmitting said first response from said first computer system to said second 
computer system and comparing said first response and said second response in the second 
computer system in order to complete the access check of said user. 

Claim 2 (original): A method according to claim 1, characterized in that the shared secret is 
individual to said user. 
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Claim 3 (original): A method according to claim 2, characterized in that the shared secret is a 
hashed value of a password of said user. 

Claim 4 (original): A method according to claim 1, characterized in that the second computer 
system comprises a system which issues said challenge and calculates said second response 
according to the rules of the first security system. 

Claim 5 (original): A method according to claim 1, characterized in that the shared secret is 
established by the following steps: 

- calculating a shared secret of a password of said user by subjecting said password to a 
secret function, 

- registering said shared secret in said first security system controlling said first computer 

system, 

- calculating an encrypted shared secret of said shared secret by subjecting said shared 
secret to an encryption function, 

- transmitting said encrypted shared secret to said trusted agent and further to said second 
security system, 

- retrieving said shared secret in said second security system by decrypting said encrypted 
shared secret, and 

- registering said shared secret in said second security system controlling said second 
computer system. 

Claim 6 (original): A method according to claim 1, characterized in that the second computer 
system comprises a server. 

Claim 7 (original): A method according to claim 1, characterized in that the first computer 
system comprises a client. 
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Claim 8 (original): A method according to claim 1, characterized in that the first and the second 
computer system are linked by a WAN or a LAN. 

Claim 9 (original): A method according to claim 1, characterized in that the first computer 
system is operated under Windows NT and the second computer system is operated under 
OS/390. 

Claim 10 (original): A method according to claim 1, characterized in that the communication 
between the first and the second computer system is done via secure channels. 

Claim 1 1 (original): A method according to claim 1, characterized in that the authentication of 
said user is effected in the first computer system and the authorisation of said user is effected in 
the second computer system. 

Claim 12 (currently amended): A trusted agent for enabling the check of the access of a user 
operating a first computer system controlled by a first security system to software and/or data on 
a second computer system controlled by a second security system comprising the following 
functions: 

a) r e c e ption of receiving a user-id for said second computer system and transmission of 
transmitting said user-id to said second security system, 

b) r e tri e val of retrieving a shared secret, which is registered in said fe^ first security system 
and in said second security system, from said second security system, and 

c) transmission of transmitting said shared secret from said trusted agent to said second 
computer system. 

Claim 13 (original): A trusted agent according to claim 12, characterized in that the fist 
computer system is operated under Windows NT and the second computer system is _operated 
under OS/390. 
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Claim 14 (previously presented): A series of executable program steps stored on at least one 
computer readable memory, the program steps when executed by a computer system causing the 
computer system to perform a method for checking the access as recited in claim 1. 

Claim 15 (previously presented): A data carrier with a computer program for carrying out the 
method according to claim 1 on a computer system. 

Claim 16 (canceled). 
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